{"id":3017,"date":"2016-12-02T11:10:03","date_gmt":"2016-12-02T11:10:03","guid":{"rendered":"http:\/\/wiki.davelevy.info\/?p=3017"},"modified":"2024-11-07T13:22:59","modified_gmt":"2024-11-07T13:22:59","slug":"investigatory-powers-act-2016","status":"publish","type":"post","link":"https:\/\/davelevy.info\/wiki\/investigatory-powers-act-2016\/","title":{"rendered":"Investigatory Powers Act 2016"},"content":{"rendered":"<p>The Investigatory Powers Bill became Law earlier this week. Interestingly the noise and criticism was turned up after the Royal Assent and <a href=\"https:\/\/petition.parliament.uk\/petitions\/173199\">a Government Site petition opposing the Law<\/a> reached 1500,000 signatures in a week. I had reason to perform some research on what the Law actually says, and here are my notes and links.<\/p>\n<p><!--more--><\/p>\n<ol>\n<li><a href=\"http:\/\/www.legislation.gov.uk\/ukpga\/2016\/25\/contents\/enacted\">The Investigatory Powers Act 2016, full text<\/a> at legislation.gov.uk<\/li>\n<li><a href=\"https:\/\/web.archive.org\/web\/20220817133757\/https:\/\/neilzone.co.uk\/IPA2016.pdf\">And in .pdf by Neil<\/a><\/li>\n<li>The <a href=\"https:\/\/www.gov.uk\/government\/publications\/investigatory-powers-bill-codes-of-practice\">Code of Practice, home page<\/a>, the <a href=\"https:\/\/www.gov.uk\/government\/uploads\/system\/uploads\/attachment_data\/file\/561091\/16-10-18_Interception_code_of_practice_draft.pdf\">Interception of Communications Code of Practice, text<\/a>. (I think this is it, updated in Oct 2016 at the time I posted).<\/li>\n<li><a href=\"https:\/\/web.archive.org\/web\/20220905162253\/https:\/\/researchbriefings.files.parliament.uk\/documents\/CBP-7578\/CBP-7578.pdf\">House of Commons Briefing Paper: Investigatory Powers Bill Committee Stage Report<\/a>, i.e. the House of Commons Committee stage report.<\/li>\n<\/ol>\n<p>Also<\/p>\n<ol>\n<li><a title=\"this is the Home page of the Committee's report\" href=\"https:\/\/web.archive.org\/web\/20210116032921\/http:\/\/isc.independent.gov.uk\/committee-reports\/special-reports\">The Intelligence and Security Committee report on the IPB<\/a><\/li>\n<li><a title=\"It seems we now have an Independnet Reviewer of Terrorism \" href=\"https:\/\/terrorismlegislationreviewer.independent.gov.uk\/wp-content\/uploads\/2016\/03\/IPBILL2.pdf\">Written for a conference, a bibliography of the Independent Reviewer of Terrorism&#8217;s contributions to the debate<\/a><\/li>\n<li><a title=\"a web page at his site, on gov.uk, so indicators of independence\" href=\"https:\/\/web.archive.org\/web\/20170128100752\/https:\/\/terrorismlegislationreviewer.independent.gov.uk\/the-investigatory-powers-act-2016-an-exercise-in-democracy\/\">The Independent Reviewer on (Anti-)Terrorism Legislation&#8217;s last words on the IBA, as passed.<\/a><\/li>\n<li><a href=\"https:\/\/web.archive.org\/web\/20170707140202\/https:\/\/terrorismlegislationreviewer.independent.gov.uk\/ip-bill-committee-march-2016\/\">The Home page of the Independent Reviewer on (Anti-)Terrorism&#8217;s evidence to the HOuse of Commons Public Bill Committee<\/a>.<\/li>\n<\/ol>\n<p>I found the following commentary exceptionally useful,<\/p>\n<ol>\n<li><a href=\"https:\/\/ukconstitutionallaw.org\/2016\/12\/01\/eric-king-and-daniella-lock-investigatory-powers-bill-key-changes-made-by-the-lords\/\">E. King and D. Lock, \u2018Investigatory Powers Bill: Key Changes Made by the Lords\u2019, U.K. Const. L. Blog (1st Dec 2016)\/<\/a><\/li>\n<\/ol>\n<p>For more<\/p>\n<ol>\n<li><a href=\"https:\/\/www.theguardian.com\/commentisfree\/2015\/feb\/07\/gchq-court-surveillance-ruling-complicit-press-tell-the-truth\">The Guardian reports that the Investigatory Powers Tribunal finds GCHQ&#8217;s secrecy violates Human Rights Law<\/a>, the IPT declares that the secrecy surrounding the UK &amp; US surveillance regimes was illegal in the UK and Europe. Evidence that the security state, notice how similar it sounds to <em>securitat\u00e9<\/em>, behaved illegally for 7 years. I think we would say in a civil and commercial domain that the compliance department was found to be wanting.<\/li>\n<\/ol>\n<p><a name=\"backdoor\"><\/a><\/p>\n<h3>Have they mandated backdoors?<\/h3>\n<ol>\n<li><a href=\"http:\/\/www.theregister.co.uk\/2016\/11\/30\/investigatory_powers_act_backdoors\/\">The Register exposes the powers of technical notices<\/a> probably based on<\/li>\n<li><a href=\"https:\/\/web.archive.org\/web\/20180423125151\/https:\/\/www.privacyinternational.org\/node\/829\">PI exposes the requirement to pre-announce telco products<\/a><\/li>\n<li><a href=\"http:\/\/www.legislation.gov.uk\/ukpga\/2016\/25\/section\/253\/enacted\">Section 253 as enacted<\/a><\/li>\n<li>Edward Snowden <a href=\"https:\/\/mobile.twitter.com\/Snowden\/status\/807220051002671104\">tweets &#8230; <\/a>although his reference seems to be out of date.<\/li>\n<li>Section 2.2 of the Code of practice defines what a CSP is. It&#8217;s a service provider and so can be a software are only provider, think facebook, although most IP service providers have hardware also. (Looks like we need to develop a peer to peer chat server although that will run on vulnerable systems.)<\/li>\n<li>Section 8.4 of the Code of practice restricts the removal of encryption to technologies they have installed themselves.<\/li>\n<li>Section 8.31 of the Code of Practice requires CSPs under a technical notice to give prior notice of major changes that might\/will disrupt any previously installed backdoors.<\/li>\n<\/ol>\n<p>or is it 8.29<br \/>\n<center><blockquote class=\"twitter-tweet\" data-partner=\"tweetdeck\"><p lang=\"en\" dir=\"ltr\">This is how <a href=\"https:\/\/twitter.com\/ukhomeoffice\">@ukhomeoffice<\/a> will compel UK companies to keep your data insecure forever. Serve notice and they the surveillance state. <a href=\"https:\/\/twitter.com\/hashtag\/IPAct?src=hash\">#IPAct<\/a> <a href=\"https:\/\/t.co\/7A2VfIOHLV\">pic.twitter.com\/7A2VfIOHLV<\/a><\/p>&mdash; Jim Killock (@jimkillock) <a href=\"https:\/\/twitter.com\/jimkillock\/status\/807691360530796546\">December 10, 2016<\/a><\/blockquote>\r\n<script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/center><\/p>\n<p style=\"text-align: center;\">ooOOOoo<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Investigatory Powers Bill became Law earlier this week. Interestingly the noise and criticism was turned up after the Royal Assent and a Government Site petition opposing the Law reached 1500,000 signatures in a week. I had reason to perform some research on what the Law actually says, and here are my notes and links.<\/p>\n","protected":false},"author":1,"featured_media":3018,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":"","_share_on_mastodon":"0"},"categories":[140],"tags":[1077,141,678,1078],"class_list":["post-3017","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-politics","tag-investigatory-powers-act","tag-politics-2","tag-privacy","tag-surveillance"],"share_on_mastodon":{"url":"","error":""},"jetpack_featured_media_url":"https:\/\/davelevy.info\/wiki\/wp-content\/uploads\/2016\/12\/IPA3-w650.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/posts\/3017","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/comments?post=3017"}],"version-history":[{"count":7,"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/posts\/3017\/revisions"}],"predecessor-version":[{"id":11700,"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/posts\/3017\/revisions\/11700"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/media\/3018"}],"wp:attachment":[{"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/media?parent=3017"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/categories?post=3017"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/davelevy.info\/wiki\/wp-json\/wp\/v2\/tags?post=3017"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}